WCU / Cybersecurity
~/CSC 471/Class 08
CSC 471 · Class 08

Dynamic Analysis and Sandboxing

20 knowledge points. Work through them in order, or jump to any topic.

//

Knowledge Points

01What Is Dynamic Analysis? → 02Static vs. Dynamic: Complementary → 03SAFETY: You Are Running Live Malware → 04The Analysis Workflow → 05Process Monitor (Procmon) → 06Regshot: Before/After Diff → 07Autoruns and Process Hacker → 08Faking the Internet: FakeNet-NG and INetSim → 09Mapping Behavior to MITRE ATT&CK → 10Execution and Persistence: Concrete Artifacts → 11Privilege Escalation, Defense Evasion, Discovery → 12Command-and-Control and Impact → 13Automated Sandboxes → 14Sandbox-Aware Malware → 15Anti-Analysis Tricks and Countermeasures → 16Turning Behavior Into Detection → 17A Tiny Behavior-Scoring Rule → 18The Pipeline → 19Tie to Lab 4 → 20Summary →